Last updated: August 30, 2026
We use strictly necessary cookies only: your login session, cross-site request forgery (CSRF) protection, and — if you choose it — the "remember me" option. No analytics, advertising, or tracking cookies, and no third-party resources that would send your IP address elsewhere (fonts are self-hosted). Under ePrivacy law (Romanian Law 506/2004), strictly necessary cookies require no consent — which is why our banner is a notice, not a consent request.
| Name | Purpose | Duration | Type |
|---|---|---|---|
trading_session |
Your session: authentication, chosen language, status messages. | 2 hours from last activity | Strictly necessary |
XSRF-TOKEN |
Protection against cross-site request forgery (CSRF). | 2 hours | Strictly necessary |
remember_web_* |
Keeps you logged in on this device — set only if you tick "remember me". | up to 5 years or until logout | Strictly necessary (at your request) |
cookie_notice_ack |
Remembers that you dismissed the notice banner (localStorage, not an actual cookie). | until you clear browser data | Preference |
Payments happen on Stripe's secure page (checkout.stripe.com). Cookies set there belong to Stripe and are governed by their privacy policy.
You can delete or block cookies in your browser settings. Without the session cookie, login and checkout can't work — the rest of the site stays accessible.
If we ever introduce cookies that require consent (traffic analytics, for example), they will be blocked until you explicitly agree, and this page and the banner will be updated first.